Risky to adopt: this is a one-release beta from 2019 with no recent repository activity, so it appears effectively abandoned despite having clear documentation, licensing, and a matching source repository.
38%
Total Score
0
64
50
The package has only one release, published about 7 years ago, with no releases in the last 12 months. That is strong evidence of limited maintenance for a payment-integration library.
The repository had zero commits and zero active maintainers in the measured 3-month period. Combined with the old last release, this indicates a substantial abandonment risk.
The repository uses Composer build tooling, but no security-scanning tools were detected. This leaves limited evidence of automated security hygiene.
The repository is not archived, which is a positive counter-signal, but it was last pushed about 6 years ago. The unarchived status does not offset the lack of current development.
The repository has no security policy. For a library handling payment API integrations, that is a genuine transparency gap, although it is less serious than the evidence of long-term inactivity.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.